Reference page — cumulative record through Wednesday, August 19, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
Linux Linux — tee: amdtee: fix use-after-free vulnerability in amdtee_close_session
AV AC PR UI S C I A CVSS EPSS %ile KEV
L H L N U H H H 7.0 .0026 17.7 —
AFFECTED
Product Versions Fixed
Linux 757cc3e9ff1d72d014096399d6e2bf03974d9da1 – —
Linux 5.6 – 5.10.199
TIMELINE
Feb 20 Reserved by Linux
Mar 2 Published (CNA: Linux)
Aug 4 RESCORED — CVE-2023-52503 (Linux). CVSS 7.8 → 7 (NVD).
Description
In the Linux kernel, the following vulnerability has been resolved:
tee: amdtee: fix use-after-free vulnerability in amdtee_close_session
There is a potential race condition in amdtee_close_session that may
cause use-after-free in amdtee_open_session. For instance, if a session
has refcount == 1, and one thread tries to free this session via:
kref_put(&sess->refcount, destroy_session);
the reference count will get decremented, and the next step would be to
call destroy_session(). However, if in another thread,
amdtee_open_session() is called before destroy_session() has completed
execution, alloc_session() may return 'sess' that will be freed up
later in destroy_session() leading to use-after-free in
amdtee_open_session.
To fix this issue, treat decrement of sess->refcount and removal of
'sess' from session list in destroy_session() as a critical section, so
that it is executed atomically.
Lifecycle
Complete event history — 3 events, chronological
| Date | Event | Detail |
| February 20, 2024 | Reserved | Reserved by Linux |
| March 2, 2024 | Published | Published (CNA: Linux) |
| August 4, 2026 | RESCORED | RESCORED — CVE-2023-52503 (Linux). CVSS 7.8 → 7 (NVD). |
Affected
Affected products and packages — 2 rows
| Vendor | Product / Package | Ecosystem | Version introduced | Fixed |
| Linux | Linux | — | 757cc3e9ff1d72d014096399d6e2bf03974d9da1 | — |
| Linux | Linux | — | 5.6 | 5.10.199 |
About this page
This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2023-52503 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Wednesday, August 19, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.